Browse vulnerabilities
377,708 results
| CVE | Priority | EPSS | CVSS | KEV | What |
|---|---|---|---|---|---|
| CVE-2022-20701 | Act now | 9.7% | — | ● | A vulnerability in Cisco Small Business RV160, RV260, RV340, and RV345 Series Routers coul… |
| CVE-2019-0703 | Act now | 9.6% | — | ● | An information disclosure vulnerability exists in the way that the Windows SMB Server hand… |
| CVE-2022-26904 | Act now | 9.6% | — | ● | Microsoft Windows User Profile Service contains an unspecified vulnerability that allows f… |
| CVE-2025-6558 | Act now | 9.6% | — | ● | Google Chromium contains an improper input validation vulnerability in ANGLE and GPU. This… |
| CVE-2022-0995 | Act now | 9.5% | 7.8 | ● | An out-of-bounds (OOB) memory write flaw was found in the Linux kernel’s watch_queue event… |
| CVE-2023-23529 | Act now | 9.5% | — | ● | Apple iOS, MacOS, Safari and iPadOS WebKit contain a type confusion vulnerability that lea… |
| CVE-2021-21206 | Act now | 9.3% | — | ● | Google Chromium Blink contains a use-after-free vulnerability that allows a remote attacke… |
| CVE-2023-42917 | Act now | 9.3% | — | ● | Apple iOS, iPadOS, macOS, and Safari WebKit contain a memory corruption vulnerability that… |
| CVE-2021-34486 | Act now | 9.3% | 7.8 | ● | Windows Event Tracing Elevation of Privilege Vulnerability |
| CVE-2025-2783 | Act now | 9.2% | — | ● | Google Chromium Mojo on Windows contains a sandbox escape vulnerability caused by a logic … |
| CVE-2022-20703 | Act now | 9.2% | — | ● | A vulnerability in Cisco Small Business RV160, RV260, RV340, and RV345 Series Routers coul… |
| CVE-2022-23748 | Act now | 9.1% | — | ● | Dante Discovery contains a process control vulnerability in mDNSResponder.exe that all all… |
| CVE-2015-2291 | Act now | 9.0% | 7.8 | ● | (1) IQVW32.sys before 1.3.1.0 and (2) IQVW64.sys before 1.3.1.0 in the Intel Ethernet diag… |
| CVE-2021-30563 | Act now | 8.9% | — | ● | Google Chromium V8 Engine contains a type confusion vulnerability that allows a remote att… |
| CVE-2015-3246 | Act now | 8.8% | 5.1 | ● | libuser before 0.56.13-8 and 0.60 before 0.60-7, as used in the userhelper program in the … |
| CVE-2025-43529 | Act now | 8.8% | — | ● | Apple iOS, iPadOS, macOS, and other Apple products contain a use-after-free vulnerability … |
| CVE-2018-14558 | Act now | 8.7% | — | ● | Tenda AC7, AC9, and AC10 devices contain a command injection vulnerability due to the "fo… |
| CVE-2010-4398 | Act now | 8.7% | — | ● | Stack-based buffer overflow in the RtlQueryRegistryValues function in win32k.sys in Micros… |
| CVE-2018-0156 | Act now | 8.6% | — | ● | A vulnerability in the Smart Install feature of Cisco IOS Software and Cisco IOS XE Softwa… |
| CVE-2019-1388 | Act now | 8.6% | — | ● | Microsoft Windows Certificate Dialog contains a privilege escalation vulnerability, allowi… |
| CVE-2022-42856 | Act now | 8.5% | — | ● | Apple iOS contains a type confusion vulnerability when processing maliciously crafted web … |
| CVE-2026-83549 | Act now | 8.5% | 7.8 | ● | Post-authentication Improper Neutralization of Special Elements used in an OS Command ('OS… |
| CVE-2025-41244 | Act now | 8.4% | — | ● | Broadcom VMware Aria Operations and VMware Tools contain a privilege defined with unsafe a… |
| CVE-2024-4671 | Act now | 8.3% | — | ● | Google Chromium Visuals contains a use-after-free vulnerability that allows a remote attac… |
| CVE-2021-28310 | Act now | 8.3% | — | ● | Microsoft Windows Win32k contains an unspecified vulnerability that allows for privilege e… |
| CVE-2026-41091 | Act now | 8.2% | 7.8 | ● | Improper link resolution before file access ('link following') in Microsoft Defender allow… |
| CVE-2024-38189 | Act now | 8.2% | — | ● | Microsoft Project contains an unspecified vulnerability that allows for remote code execut… |
| CVE-2019-11634 | Act now | 8.0% | 9.8 | ● | Citrix Workspace App before 1904 for Windows has Incorrect Access Control. |
| CVE-2021-38646 | Act now | 8.0% | 7.8 | ● | Microsoft Office Access Connectivity Engine Remote Code Execution Vulnerability |
| CVE-2022-3723 | Act now | 7.9% | — | ● | Google Chromium V8 Engine contains a type confusion vulnerability that allows a remote att… |
| CVE-2023-28434 | Act now | 7.9% | — | ● | MinIO contains a security feature bypass vulnerability that allows an attacker to use craf… |
| CVE-2023-0386 | Act now | 7.9% | — | ● | Linux Kernel contains an improper ownership management vulnerability, where unauthorized a… |
| CVE-2021-4102 | Act now | 7.8% | — | ● | Google Chromium V8 Engine contains a use-after-free vulnerability that allows a remote att… |
| CVE-2018-19323 | Act now | 7.8% | 9.8 | ● | The GDrv low-level driver in GIGABYTE APP Center v1.05.21 and earlier, AORUS GRAPHICS ENGI… |
| CVE-2025-5419 | Act now | 7.8% | — | ● | Google Chromium V8 contains an out-of-bounds read and write vulnerability that could allow… |
| CVE-2018-0172 | Act now | 7.8% | — | ● | A vulnerability in the DHCP option 82 encapsulation functionality of Cisco IOS Software an… |
| CVE-2012-2034 | Act now | 7.8% | — | ● | Adobe Flash Player contains a memory corruption vulnerability that allows for remote code … |
| CVE-2018-0155 | Act now | 7.7% | — | ● | A vulnerability in the Bidirectional Forwarding Detection (BFD) offload implementation of … |
| CVE-2021-1870 | Act now | 7.7% | — | ● | Apple iOS, iPadOS, and macOS WebKit contain an unspecified logic vulnerability that allows… |
| CVE-2020-0683 | Act now | 7.7% | — | ● | Microsoft Windows Installer contains a privilege escalation vulnerability when MSI package… |
| CVE-2026-82329 | Act now | 7.7% | 9.8 | ● | JFrog Artifactory contains an authentication weakness that, under default configuration, m… |
| CVE-2018-0173 | Act now | 7.6% | — | ● | A vulnerability in the Cisco IOS Software and Cisco IOS XE Software function that restores… |
| CVE-2018-0174 | Act now | 7.6% | — | ● | A vulnerability in the DHCP option 82 encapsulation functionality of Cisco IOS Software an… |
| CVE-2019-0676 | Act now | 7.5% | — | ● | An information disclosure vulnerability exists when Internet Explorer improperly handles o… |
| CVE-2024-5274 | Act now | 7.5% | — | ● | Google Chromium V8 contains a type confusion vulnerability that allows a remote attacker t… |
| CVE-2021-30554 | Act now | 7.4% | — | ● | Google Chromium WebGL contains a use-after-free vulnerability that allows a remote attacke… |
| CVE-2023-7024 | Act now | 7.4% | — | ● | Google Chromium WebRTC, an open-source project providing web browsers with real-time commu… |
| CVE-2020-1040 | Act now | 7.3% | — | ● | Microsoft Hyper-V RemoteFX vGPU contains an improper input validation vulnerability due to… |
| CVE-2017-6744 | Act now | 7.3% | — | ● | The Simple Network Management Protocol (SNMP) subsystem of Cisco IOS 1 contains a vulnerab… |
| CVE-2020-3950 | Act now | 7.3% | — | ● | VMware Fusion, Remote Console (VMRC) for Mac, and Horizon Client for Mac contain a privile… |